Avirato operates a modestly scoped online booking engine serving the hospitality industry, with a correspondingly narrow vulnerability footprint. The observed exposures relate to application-layer concerns typical of web-facing booking platforms; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Avirato over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-0768HIGH The Avirato hotels online booking engine WordPress plugin through 5.0.5 does not validate and escape some of its shortcode attributes before using them in SQL statement/s, which co | May 8, 2023 | 8.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Avirato.
Media articles that mention a CVE ID that affects a product developed by Avirato — matched by CVE ID, not by vendor name.